firewall {
   family inet {
      replace:
      /*
       * $Id: firewall.jcl
       * $Date: Sat, May 31, 2014 00:51:24 AM
       *
       * Inbound BGP ACL policy applied to loopback and peering interfaces
       */
      filter accept-established {
         term accept-tcp-established {
            from {
               source-address {
                  1.1.1.1;
               }
               destination-address {
                  2.2.2.2;
               }
               protocol tcp;
               source-port 100;
               destination-port 2000;
            }
            then {
               accept
            }
         }
      }
   }
}
